5.1.d AAA with TACACS+ and RADIUS

i first turned off the radius server and authenticated locally with the default method list…

r3#debug aaa authenti
AAA Authentication debugging is on
r3#term mon
r3#
May 11 14:10:42.572: AAA/BIND(00000015): Bind i/f
May 11 14:10:42.576: AAA/AUTHEN/LOGIN (00000015): Pick method list ‘default’
r3#
May 11 14:11:14.019: AAA/AUTHEN/ENABLE(00000015): Processing request action LOGIN
May 11 14:11:14.019: AAA/AUTHEN/ENABLE(00000015): Done status GET_PASSWORD
r3#
May 11 14:11:22.163: AAA/AUTHEN/ENABLE(00000015): Processing request action LOGIN
May 11 14:11:22.215: AAA/AUTHEN/ENABLE(00000015): Done status PASS

r3#debug radius ?
accounting      RADIUS accounting packets only
authentication  RADIUS authentication packets only
brief           Only I/O transactions are recorded
elog            RADIUS event logging
failover        Packets sent upon fail-over
local-server    Local RADIUS server
retransmit      Retransmission of packets
verbose         Include non essential RADIUS debugs
<cr>

r3#debug radius authenti
Radius protocol debugging is on
Radius protocol brief debugging is off
Radius protocol verbose debugging is off
Radius packet hex dump debugging is off
Radius packet protocol (authentication) debugging is on
Radius packet protocol (accounting) debugging is off
Radius elog debugging debugging is off
Radius packet retransmission debugging is off
Radius server fail-over debugging is off
Radius elog debugging debugging is off
r3#
May 11 14:13:33.730: AAA/BIND(00000017): Bind i/f
May 11 14:13:33.730: AAA/AUTHEN/LOGIN (00000017): Pick method list ‘default’
May 11 14:13:33.738: RADIUS/ENCODE(00000017): ask “Username: ”
May 11 14:13:33.738: RADIUS/ENCODE(00000017): send packet; GET_USER
r3#
May 11 14:13:40.422: RADIUS/ENCODE(00000017): ask “Password: ”
May 11 14:13:40.422: RADIUS/ENCODE(00000017): send packet; GET_PASSWORD
r3#
May 11 14:13:45.594: RADIUS/ENCODE(00000017):Orig. component type = EXEC
May 11 14:13:45.594: RADIUS:  AAA Unsupported Attr: interface         [158] 5
May 11 14:13:45.594: RADIUS:   74 74 79                                         [tty]
May 11 14:13:45.594: RADIUS/ENCODE(00000017): dropping service type, “radius-server attribute 6 on-for-login-auth” is off
May 11 14:13:45.594: RADIUS(00000017): Config NAS IP: 0.0.0.0
May 11 14:13:45.598: RADIUS/ENCODE(00000017): acct_session_id: 10
May 11 14:13:45.598: RADIUS(00000017): sending
May 11 14:13:45.598: RADIUS/ENCODE: Best Local IP-Address 172.16.3.1 for Radius-Server 172.16.3.2
May 11 14:13:45.598: RADIUS(00000017): Send Access-Request to 172.16.3.2:1812 id 1645/6, len 82
May 11 14:13:45.602: RADIUS:  authenticator 60 CF 80 A9 F5 03 06 80 – 04 A3 A0 79 40 89 8E 64
May 11 14:13:45.602: RADIUS:  User-Name           [1]   9   “raduser”
May 11 14:13:45.602: RADIUS:  User-Password       [2]   18  *
May 11 14:13:45.602: RADIUS:  NAS-Port            [5]   6   69
May 11 14:13:45.602: RADIUS:  NAS-Port-Id         [87]  7   “tty69”
May 11 14:13:45.602: RADIUS:  NAS-Port-Type       [61]  6   Virtual                   [5]
May 11 14:13:45.602: RADIUS:  Calling-Station-Id  [31]  10  “10.1.1.1”
r3#
May 11 14:13:45.602: RADIUS:  NAS-IP-Address      [4]   6   172.16.3.1
May 11 14:13:45.606: RADIUS: Received from id 1645/6 172.16.3.2:1812, Access-Accept, len 26
May 11 14:13:45.610: RADIUS:  authenticator AC 26 56 EC D9 A8 8D 12 – D7 E9 8C 23 14 AC 87 66
May 11 14:13:45.610: RADIUS:  Session-Timeout     [27]  6   9999999
May 11 14:13:45.610: RADIUS(00000017): Received from id 1645/6
r3#